• cyber-suite-single-tenant-v2.6.24 961664a06a

    michael released this 2026-07-21 08:46:01 +00:00 | 74 commits to main since this release

    Cyber Suite single-tenant export v2.6.24

    Built from commit c67cfd870cffbb3270f7bbb60f011cb637906c33 (c67cfd870cff) on branch main.

    Changes since v2.6.23

    • GRC Insights + AI clustering; import runs AI suggestions by default
    • AppSec M1 dedupe/gates/resolve-by-absence; DefectDojo mappers + pull
    • Platform conformance M1–M3 (parse CI workflows, PE UI, persist assessments)
    • Management six-plane KPIs + Program Health risk funnel
    • GRC machine API tokens (exceptions REST API)

    Package

    • Asset: cyber-suite-single-tenant.zip (linux/amd64 binary + Dockerfile + setup.env.sample)
    • Container: docker build -t cyber-suite:v2.6.24 . then run with --env-file setup.env -p 8080:8080
    • Required env: CP_SECRETS_KEY

    Operator publish: FORGEJO_TOKEN=... ./publish-v2.6.24.sh

    Downloads
  • cyber-suite-single-tenant-v2.6.23 35d84bd8a6

    michael released this 2026-07-17 15:58:12 +00:00 | 79 commits to main since this release

    Cyber Suite single-tenant export v2.6.23

    Built from commit 08129f30364f4968a8b7088abf97191a8ff2eba1 (08129f30364f) on branch adr/0081-followups (includes uncommitted GRC Insights / AI clustering).

    Changes since v2.6.22

    • GRC Exception Insights: rule-based thematic dashboard for Management
    • GRC AI Clustering: Refresh AI themes — org-specific risk cluster names, persisted snapshot
    • GRC import: AI suggestions by default on commit (incl. accepted risk)
    • GRC list: bulk / per-row AI suggest for open exceptions

    Package

    • Asset: cyber-suite-single-tenant.zip (linux/amd64 binary + Dockerfile + setup.env.sample)
    • Container: docker build -t cyber-suite:v2.6.23 . then run with --env-file setup.env -p 8080:8080
    • Required env: CP_SECRETS_KEY

    Operator publish: FORGEJO_TOKEN=... ./publish-v2.6.23.sh

    Downloads
  • cyber-suite-single-tenant-v2.6.22 e5717eefc2

    michael released this 2026-07-16 20:14:59 +00:00 | 84 commits to main since this release

    Cyber Suite single-tenant export v2.6.22

    Built from commit 08129f30364f4968a8b7088abf97191a8ff2eba1 (08129f30364f) on branch adr/0081-followups (includes uncommitted Advisory / MC / Delivery / plane work).

    Changes since v2.6.21

    • Advisory: Inherent Risk project tab (5x5 matrix + full inherent-risk list)
    • Mission Control: module renames redisplay after save (Saved chip + flash list); GRC/Risk ModuleLabel wiring
    • Delivery: convert engagement to project closes engagement; duplicates plan + full cockpit (RAID, gates, CRs, reports, docs, commercial, Jira) onto the project; project Plan add milestone/deliverable/task
    • Planes: M1 pure logic for secops/identity/appsec/offsec/resilience contracts

    Package

    • Asset: cyber-suite-single-tenant.zip (linux/amd64 binary + Dockerfile + setup.env.sample)
    • Required env: CP_SECRETS_KEY

    Operator publish: FORGEJO_TOKEN=... ./publish-v2.6.22.sh

    Downloads
  • cyber-suite-single-tenant-v2.6.21 2ef5011396

    michael released this 2026-07-16 13:57:32 +00:00 | 89 commits to main since this release

    Cyber Suite single-tenant export v2.6.21

    Built from commit 08129f30364f4968a8b7088abf97191a8ff2eba1 (08129f30364f) on branch adr/0081-followups (includes uncommitted Advisory Inherent Risk UI).

    Changes since v2.6.20

    • Advisory: first-class project tab Inherent Risk — 5×5 likelihood×impact matrix at the top, then all inherent risks listed (highest score first); generate/regenerate via /api/project-risks
    • Residual risk profile remains under the register
    • Carries v2.6.20 features (MC modules, Delivery archive, GRC unlink, Policy Library Compare)

    Package

    • Asset: cyber-suite-single-tenant.zip (linux/amd64 binary + Dockerfile + setup.env.sample)
    • Required env: CP_SECRETS_KEY

    Operator publish: FORGEJO_TOKEN=… ./publish-v2.6.21.sh

    Downloads
  • cyber-suite-single-tenant-v2.6.18 18b5b51270

    michael released this 2026-07-16 10:23:22 +00:00 | 94 commits to main since this release

    Cyber Suite single-tenant v2.6.18

    Built 2026-07-16T10:23:12Z from branch adr/0081-followups commit 9ff005ef4b98 (9ff005ef4b981bfb7d9cf5f11ebf5057905343e6).

    Since v2.6.17

    • Module display names (display-only): Mission Control → Configuration → Module display names. Rename modules to match your org language; paths/APIs/data prefixes stay fixed.
    • Surfaces: suite launcher tiles, Products menus, product headers; Cyber Policy switcher + topnav; Advisory products API + SPA chrome.
    • ADR-0081 P1b/P2 (from this branch): NVD full-corpus paging + incremental refresh; exact product match for derived exposure; Source/Verified/Confidence tags.

    Delivery

    Host had no Docker daemon — bundle is static linux/amd64 binary + Dockerfile.

    cd cyber-suite-single-tenant
    docker build -t cyber-suite:v2.6.18 .
    

    Env

    • Required: CP_SECRETS_KEY
    • Optional: CVE_FEED_URL / CVE_FEED_API_KEY; AI / embeddings / SSRF_ALLOWED_HOSTS

    Asset

    Fixed name: cyber-suite-single-tenant.zip

    Downloads
  • cyber-suite-single-tenant-v2.6.17 50003a3dec

    michael released this 2026-07-16 09:39:09 +00:00 | 99 commits to main since this release

    Cyber Suite single-tenant v2.6.17

    Built 2026-07-16T09:38:51Z from branch adr/0081-followups commit faa07c114588 (faa07c1145888be374b6a87e75bdbc81b9ca8807).

    Since v2.6.16

    • ADR-0081 P1b: NVD full-corpus paging (startIndex / resultsPerPage / totalResults) + incremental lastModStartDate refresh; all fetches stay through safedial
    • ADR-0081 P2 hardening: product matching is exact / CPE-segment only (no substring false positives); DerivedExposure tagged Source=derived, Verified=false, Confidence version-only|component|purl|cpe

    Delivery

    Host had no Docker daemon — bundle is the static linux/amd64 binary + Dockerfile. On the customer host:

    cd cyber-suite-single-tenant
    docker build -t cyber-suite:v2.6.17 .
    

    (Or run the binary directly per QUICKSTART.md.)

    Env

    • Required: CP_SECRETS_KEY
    • Optional: CVE_FEED_URL / CVE_FEED_API_KEY; AI / embeddings / SSRF_ALLOWED_HOSTS

    Asset

    Fixed name: cyber-suite-single-tenant.zip

    Downloads
  • cyber-suite-single-tenant-v2.6.16 221079e2b5

    michael released this 2026-07-15 23:02:37 +00:00 | 104 commits to main since this release

    Cyber Suite single-tenant v2.6.16

    Built 2026-07-15T23:02:10Z from main 39d3c9e25901 (39d3c9e2590186df47f3836bcc88c6a5fb0cd248).

    Since v2.6.15

    • Enterprise architecture package (Waves 0-2): unified WriteRisk, CVE corpus, Inventory posture engine, five security planes mounted (SecOps, Identity, AppSec, Offsec, Resilience) with risk/GRC feeds
    • ADR-0081 P2-P4: derived-exposure engine + Inventory Exposure UI; GRC Issue.Source + reconciliation; CI components (SBOM/CPE/purl)
    • Durable Mongo for the five planes + posture assessments/baselines
    • Connector seams (JSON ingest): SIEM / IdP / scanner / CSPM
    • Delivery UX: project and programme timelines match engagement style (how-to key, today line, milestone diamonds, project bars, programme portfolio grouping)

    Env

    • Required: CP_SECRETS_KEY
    • Optional: CVE_FEED_URL / CVE_FEED_API_KEY; AI / embeddings / SSRF_ALLOWED_HOSTS (unchanged shape)

    Asset

    Fixed name: cyber-suite-single-tenant.zip (linux/amd64 static binary + Dockerfile + setup docs).

    Downloads
  • cyber-suite-single-tenant-v2.6.15 c55e7bcf21

    michael released this 2026-07-15 18:20:15 +00:00 | 109 commits to main since this release

    v2.6.15 — Delivery convert plan copy repair.

    Highlights

    • Convert → project plan copy fixed: milestones → deliverables → tasks are created on the project.
    • Copy plan from source engagement on the project Plan tab (repairs empty plans from earlier converts).
    • Continuation projects default to Plan; Timeline lists plan milestones.
    • Includes v2.6.14: convert as continuation, GRC exception → remediation tasks.

    Built from main a5938b538c7f (a5938b538c7f7a261e08868ed3a7bacf6d160f88).

    sha256sum -c SHA256SUMS
    cp setup.env.sample setup.env
    docker build -t cyber-suite:v2.6.15 .
    docker run --env-file setup.env -p 8080:8080 cyber-suite:v2.6.15
    

    Required: CP_SECRETS_KEY.

    Downloads
  • cyber-suite-single-tenant-v2.6.14 5dadf9c89d

    michael released this 2026-07-15 15:46:33 +00:00 | 114 commits to main since this release

    v2.6.14 — Delivery convert continuation + GRC exception → remediation tasks.

    Highlights

    • Delivery convert as continuation: engagement → Project or Programme + Project (engagement kept).
    • Full plan copied onto the project (milestones → deliverables → tasks) + Plan tab.
    • SourceEngagementID: project surfaces live RAID / gates / change / reports / documents / commercial / Jira.
    • GRC exceptions: Create remediation task on an engagement or project (soft link; exception stays GRC SoR).
    • ADR-0082/0083 SecOps plane charter + incident data model (docs).

    Built from main 225e323552d6 (225e323552d656f9b2608bc0c9f6c9ca99ba8b61).

    sha256sum -c SHA256SUMS
    cp setup.env.sample setup.env
    docker build -t cyber-suite:v2.6.14 .
    docker run --env-file setup.env -p 8080:8080 cyber-suite:v2.6.14
    

    Required: CP_SECRETS_KEY.

    Downloads
  • cyber-suite-single-tenant-v2.6.13 43913730af

    michael released this 2026-07-15 14:38:29 +00:00 | 119 commits to main since this release

    v2.6.13 — Programmes timeline shows projects; Delivery + GRC ops polish.

    Highlights

    • Delivery Programs → Timeline: ▸ project bars (start→target) under each programme, plus ◆ phase milestones.
    • Projects as first-class work packages (under a programme or standalone).
    • Timeline PDF / PowerPoint export for engagements and programs.
    • Engagement create with name only (client defaults to Internal).
    • GRC: bulk status edit (e.g. re-open all accepted risk); AI Re-run suggestion label.
    • GRC exception host → Inventory CMDB (MC toggle, default on).
    • ADR-0081 P1 CVE corpus (off until CVE_FEED_URL set).

    Built from main 7e3d3677267e (7e3d3677267e43b44388932fc473ee4d59004b79).

    sha256sum -c SHA256SUMS
    cp setup.env.sample setup.env
    docker build -t cyber-suite:v2.6.13 .
    docker run --env-file setup.env -p 8080:8080 cyber-suite:v2.6.13
    

    Required: CP_SECRETS_KEY.

    Downloads